Advisor – Security Generalist recruitment

Using a wide variety of technical and sector-specific skills, KPMG's Risk Consulting group proactively helps clients increase profits and perform outstandingly whilst reducing reputational, operational, financial, technology and other risks. We are experienced in managing diverse issues including fraud, corruption, regulatory compliance, risk frameworks and modelling, capital efficiency, corporate governance, dispute resolution, data, deriving value from contracts and much more. We turn risk to advantage for our clients.

Technology - Use advanced software, hardware and methodologies to provide our clients with independent, jargon free advice to help them deal effectively with technology-related risks and derive maximum value from their data and documentation.

"Information Security Consultancy of the Year" - SC Magazine Europe Awards 2011

For more information about our services please visit our external website - www.kpmg.co.uk

Roles and Responsibilities

The Information Protection practice, provides advisory services to assess and deliver organisations security capabilities from a high level view of the Information Security Management Processes through to specific assessments and control design services addressing the Confidentiality, Integrity, Availability and Privacy.

Responsibilities include:

- Management of small engagements end-to-end and support, as a team member, on larger engagements.
- Scoping, production of deliverables and financial management.
- Delivery of security related assurance services to clients.
- Attending and sometimes leading client face to face meetings.
- Preparing written reports, memos and issue logs.
- Assisting with reviewing the work of others.
- Liaising with clients on delivery, implementation and sales issues, in particular, identifying business development opportunities.
- Developing internal networks.

Qualifications and Skills

- A relevant degree and preference for an MSc in IT and/or Information Security.
- CISM, CISSP, M. Inst IISP or similar commitment to the Information Security industry.
- Clear and demonstrable understanding of security, risk and IT standards, policies and frameworks e.g. ISO27001, COBIT, ITIL, BS25999 and how they impact IAM.

Experience and Background

- Proven experience in an information security role
- Understanding of a wide range of information security methodologies, principles, technologies and techniques including risk management, control assurance and security operational activities.
- Good understanding of information security management practices.
- A genuine interest in the information security.
- Excellent communication, negotiation and project management skills.
- The ability to work individually and as part of a team.
- Able to multi-task and prioritise workload.
- Strong capability to manage and deliver multiple engagements simultaneously.